Description
in OpenHarmony v4.0.0 and prior versions allow a local attacker arbitrary code execution in pre-installed apps through use after free.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-26015 | in OpenHarmony v4.0.0 and prior versions allow a local attacker arbitrary code execution in pre-installed apps through use after free. |
References
History
Fri, 24 Jan 2025 16:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Openatom
Openatom openharmony |
|
| CPEs | cpe:2.3:o:openatom:openharmony:4.0:-:*:*:-:*:*:* | |
| Vendors & Products |
Openatom
Openatom openharmony |
Status: PUBLISHED
Assigner: OpenHarmony
Published:
Updated: 2024-08-02T01:03:51.313Z
Reserved: 2024-03-15T08:05:24.413Z
Link: CVE-2024-28951
Updated: 2024-08-02T01:03:51.313Z
Status : Analyzed
Published: 2024-04-02T07:15:45.030
Modified: 2025-01-24T16:25:21.360
Link: CVE-2024-28951
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD